CVE-2025-9577: TOTOLINK X2000R Administrative shadow.sample default credentials
A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9577?
The severity of CVE-2025-9577 is significant due to its exploitation allowing unauthorized access via default credentials.
How do I fix CVE-2025-9577?
To fix CVE-2025-9577, update the TOTOLINK X2000R firmware to a version newer than 2.0.0.
What vulnerabilities does CVE-2025-9577 exploit?
CVE-2025-9577 exploits the use of default credentials through the Administrative Interface of the TOTOLINK X2000R.
Who is affected by CVE-2025-9577?
Anyone using the TOTOLINK X2000R with firmware version up to 2.0.0 is affected by CVE-2025-9577.
Is remote access required for CVE-2025-9577 exploitation?
No, remote access is not required; exploitation of CVE-2025-9577 can only be performed locally.